Описание
A flaw was found in the vllm-orchestrator-gateway component. The system's production binary logs all incoming authorization headers and full chat payloads, which may contain personally identifiable information (PII) and secrets, to persistent logs. This sensitive data, including bearer tokens and chat content, can be accessed by any user with logging privileges. This vulnerability leads to information disclosure, potentially allowing an attacker to harvest credentials and sensitive conversation content.
Отчет
This Moderate flaw in the vllm-orchestrator-gateway component causes sensitive data, including bearer tokens and chat payloads, to be logged at a DEBUG level by default. In Red Hat OpenShift environments, these logs are directed to the node journal and cluster logging stack, making them accessible to any user with pods/log RBAC within the namespace. This persistent logging of credentials and private conversation content poses a significant risk of information disclosure.
Меры по смягчению последствий
To mitigate this issue, configure the RUST_LOG environment variable for the vllm-orchestrator-gateway component to a level higher than DEBUG, such as INFO. This will prevent the logging of sensitive authorization headers and full chat payloads to persistent logs. For example, set RUST_LOG=info in the deployment configuration. A restart of the affected pods or services is required for this change to take effect.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenShift AI (RHOAI) | rhoai/odh-trustyai-vllm-orchestrator-gateway-rhel9 | Under investigation |
Показывать по
Дополнительная информация
Статус:
EPSS
7.5 High
CVSS3
Связанные уязвимости
A flaw was found in the vllm-orchestrator-gateway component. The system's production binary logs all incoming authorization headers and full chat payloads, which may contain personally identifiable information (PII) and secrets, to persistent logs. This sensitive data, including bearer tokens and chat content, can be accessed by any user with logging privileges. This vulnerability leads to information disclosure, potentially allowing an attacker to harvest credentials and sensitive conversation content.
A flaw was found in the vllm-orchestrator-gateway component. The system's production binary logs all incoming authorization headers and full chat payloads, which may contain personally identifiable information (PII) and secrets, to persistent logs. This sensitive data, including bearer tokens and chat content, can be accessed by any user with logging privileges. This vulnerability leads to information disclosure, potentially allowing an attacker to harvest credentials and sensitive conversation content.
EPSS
7.5 High
CVSS3